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AMENDMENTS TO THE CLAIMS 

The listing of claims will replace all prior versions, and listings, of claims in the 
application: 
Listing of Claims: 

1. (Currently Amended) In a computerized system that includes one or more clients 
accessing a gateway and content server that are part of a network, wherein access to the content 
server requires authentication credentials, the network maintaining gateway authentication 
credentials that specify one or more access privileges tailored to access through the gateway, a 
method of authenticating a client comprising a gateway performing the acts of: 

defining an authentication filter in a gateway that is remotely interposed between 
a remote client and a content server, wherein the authentication filter feat maps 
authentication credentials received from the remote clients according to pre-established 
criteria , the authentication filter including a domain identifier and a usemame modifier ; 

receiving authentication credentials at the eatewav from the remote a clien t that 
include both a domain and a user name corresponding to access permissions for accessing 
the resources at the content server through the domain : 

mapping the received authentication credentials based on the pre-established 
criteria, the — mappod — auth e ntication — cr e d e ntials matching — g ateway — authentication 
orodontialo maintained on th e network and corresponding to cli e nt acc e ss through th e 
gatewa y, and by changing at least one of the domain and user name received from the 
remote client to different domain or user name, respectively, wherein the domain 
identifier is configured to change the domain and wherein the username modifier is 
configured to change the user name : and 

sending the mapped authentication credentials to the network, wherein and such 
that t he client's access to the content source is d e t e rmin ed-fref nbased on the mapped 
authentication credential s comprising the at least one of a changed user name and a 
changed domain . 
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2. (Original) A method as recited in claim 1 wherein gateway authentication 
credentials and other authentication credentials are maintained in separate domains, and wherein 
the act of mapping the received authentication credentials includes changing a domain name that 
is part of the received authentication credentials. 

3. (Original) A method as recited in claim 2 wherein the act of mapping the 
received authentication credentials includes replacing the domain name that is part of the 
received authentication credentials with another domain name. 

4. (Original) A method a$ recited in claim 1 wherein the gateway authentication 
credentials are maintained in a credential database that is administered separately from domain 
authentication credentials and recognized by the content server only in authenticating client 
access through the gateway. 

5. (Original) A method as recited in claim 1 wherein gateway authentication 
credentials and other authentication credentials share a common domain, and wherein the act of 
mapping the received authentication credentials includes changing a useraame that is part of the 
received authentication credentials. 

6. (Original) A method as recited in claim 5 wherein the act of mapping the 
received authentication credentials includes adding a suffix to the usemame. 

7. (Original) A method as recited in claim 5 wherein the act of mapping the 
received authentication credentials includes adding a prefix to the usemame. 

8. (Original) A method as recited in claim 1 wherein the client includes one or 
more identified wireless application protocol servers providing gateway and content server 
access to one or more other clients, the method further comprising the act of accepting 
authentication credentials only from the one or more identified wireless application protocol 
servers ► 
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9. (Original) A method as recited in claim 1 wherein the gateway authentication 
credentials coiTespond to other authentication credentials that allow access to a content server, 
and wherein a trust relationship exists between the gateway authentication credentials and other 
authentication credentials with respect to one or more access privileges, the method further 
comprising the acts of: 

receiving a request for content available at the content server, 
sending the request to the network; 
receiving the requested content from the network; and 
sending the received content to the client. 

10. (Original) A method as recited in claim 9 wherein the content available at the 
content server comprises email content. 

1L (Original) A method as recited in claim 9 wherein the one or more access 
privileges included within the trust relationship that exists between the gateway authentication 
credentials and the other authentication credentials comprise a delegate access permission. 
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12. (Currently Amended) In a computerized system that includes one or more mobile 
clients accessing a mobile gateway and content server that are part of a network, wherein access 
to the content server requires authentication credentials that may contain a combination of 
numbers, upper case letters, lower case letters, and punctuation, and wherein at least some of the 
mobile clients use relatively short authentication credentials or have an input system that is 
optimized for numeric input rather than for letters or punctuation, the network maintaining 
mobile authentication credentials that specify one or more access privileges tailored to mobile 
client access, a method of authenticating a mobile client comprising a mobile gateway 
performing steps for: ^ 

alterin g, at a gateway^ authentication credential s that include a user name and a 
domain that are received from a WAP server communicating with one or more remote 
mobile clients and the gateway to produce mapped authentication credentials that match 
mobile authentication credentials maintained on the network by at least one of changing 
the domain name and the user name, wherein changing the user name includes one of 
adding characters to the user name and substituting only a portion of the user name : 

identifying a mobile client to the network using the altered authentication 
credentials; and 

accessing content provided by the network in accordance with the access 
privileges allowed by the mobile authentication credentials. 

13. (Original) A method as recited in claim 12 wherein the step for altering 
authentication credentials comprises the acts of: 

defining an authentication filter that maps authentication credentials received 
from mobile clients according to pre-established criteria; and 

mapping the received authentication credentials based on the pre-established 

criteria. 
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14. (Original) A method as recited in claim 12 wherein the step for identifying a 
mobile client comprises the acts of: 

receiving authentication credentials from a mobile client; and 

sending mapped authentication credentials to the network, wherein the mobile 

client's access to the content source is determined from the mapped authentication 

credentials. 

15. (Cancelled), 

16. (Original) A method as recited in claim 15 wherein changing at least one of 
the domain name and a username includes either adding a suffix to the usemame or replacing the 
domain name with another domain name. 

17. (Original) A method as recited in claim 12 wherein the mobile authentication 
credentials are maintained in a credential database that is administered separately from domain 
authentication credentials and recognized by the content server only in authenticating mobile 
clients. 

18. (Original) A method as recited in claim 12 wherein mobile authentication 
credentials and other authentication credentials share a common domain. 

19. (Original) A method as recited in claim 12 wherein the mobile client includes 
one or more identified wireless application protocol servers providing mobile gateway and 
content server access to one or more other mobile clients, the step for identifying a mobile client 
comprising the act of accepting authentication credentials only from the one or more identified 
wireless application protocol servers. 
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20. (Original) A method as recited in claim 12 wherein the step for accessing 
content provided by the content server comprises the acts of: 

receiving a request to access content from the mobile client; 
sending the request to the network; 
receiving the requested content from the network; and 
sending the received content to the mobile client 

21. (Original) A method as recited in claim 20 wherein the content is email 
content. 

22. (Original) A method as recited in claim 12 wherein a trust relationship exists 
between the mobile authentication credentials and other authentication credentials with respect to 
one or more access privileges, 

23. (Original) A method as recited in claim 22 wherein the one or more access 
privileges included within the trust relationship that exists between the mobile authentication 
credentials and the other authentication credentials comprise a delegate access permission. 
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24, (Currently Amended) In a computerized system that includes one or more mobile 
clients accessing a mobile gateway and content server that are part of a network, wherein access 
to the content server requires authentication credentials that may contain a combination of 
numbers, upper case letters, lower case letters, and punctuation, and wherein at least some of the 
mobile clients use relatively short authentication credentials or have an input system that is 
optimized for numeric input rather than for letters or punctuation, the network maintaining 
mobile authentication credentials that specify one or more access privileges tailored to mobile 
client access, a computer program product that implements a method of authenticating a mobile 
client, comprising: 

a computer readable medium for carrying machine-executable instructions for 
implementing the method; and 

wherein said method is comprised of machine-executable instructions for a 
mobile gateway performing the acts of: 

defining an authentication filter in a gateway that is remotely interposed 
between a remote client and a content server, wherein the authentication filter feat 
maps authentication credentials received from the remote clients according to 
pre-established criteri a, the authentication filter including a domain identifier and 
a username modifier : 

receiving authentication credentials at the gateway from the remote a client 
that include both a domain and a user name corresponding to access, permissions 
for accessing the resources at the content server through the domain : 

mapping the received authentication credentials based on the 
pre-established criteria, the mopped auth e ntication orodontialo matching gat e way 
auth e ntication cr e d e ntials maintain e d on th e n e twork and corr e sponding to client 
access through th e gat e wa y , and bv changing at least one of the domain and user 
name received from the remote client to different domain or user name, 
respectively, wherein the domain identifier is configured to change the domain 
and wherein the username modifier is configured to change the user name: and 

sending the mapped authentication credentials to the network, wh e r e in and 
such that the client's access to the content source is doterniunQ d-feambased on the 
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mapped authentication credential s comprising the at least one of a changed user 
name and a changed domain . 

25. (Original) A computer program product a$ recited in claim 24 wherein mobile 
authentication credentials and other authentication credentials are maintained in separate 
domains, and wherein the act of mapping the received authentication credentials includes 
changing a domain name that is part of the received authentication credentials. 

26. (Original) A computer program product as recited in claim 25 wherein the act 
of mapping the received authentication credentials includes replacing the domain name that is 
part of the received authentication credentials with another domain name. 

27. (Original) A computer program product as recited in claim 24 wherein the 
mobile authentication credentials are maintained in a credential database that is administered 
separately from domain authentication credentials and recognized by the content server only in 
authenticating mobile clients. 

28. (Original) A computer program product as recited in claim 24 wherein mobile 
authentication credentials and other authentication credentials share a common domain, and 
wherein the act of mapping the received authentication credentials includes changing a username 
that is part of the received authentication credentials. 

29. (Original) A computer program product as recited in claim 28 wherein the act 
of mapping the received authentication credentials includes adding a suffix to the username. 

30. (Original) A computer program product as recited in claim 28 wherein the act 
of mapping the received authentication credentials includes adding a prefix to the username. 
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31. (Original) A computer program product as recited in claim 24 wherein the 
mobile authentication credentials correspond to other authentication credentials that allow access 
to a content server, and wherein a trust relationship exists between the mobile authentication 
credentials and other authentication credentials with respect to one or more access privileges, the 
method further comprising computer-executable instructions for performing the acts of: 

receiving a request for content available at the content server; 
sending the request to the network; 
receiving the requested content from the network; and 
sending the received content to the mobile client. 

32. (Original) A computer program product as recited in claim 31 wherein the 
content available at the content server comprises email content 

33. (Original) A computer program product as recited in claim 31 wherein the 
one or more access privileges included within the trust relationship that exists between the 
mobile authentication credentials and the other authentication credentials comprise a delegate 
access permission. 

34. (Original) A computer program product as recited in claim 24 wherein the 
mobile client includes one or more identified wireless application protocol servers providing 
mobile gateway and content server access to one or more other mobile clients, the method further 
comprising computer-executable instructions for performing the act of accepting authentication 
credentials only from the one or more identified wireless application protocol servers. 



Page 13 of 16 



PAGE 17/20 * RCVD AT 2/28/2005 5:17:31 PM [Eastern Standard Time] * $VR:U$PT0#XRF-1/9 1 DNIS:8729306 1 CSID:8013281707 1 DURATION (mm-ss):09-52 



